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Abstract. We consider the communication complexity of the binary in- 
ner product function in a variation of the two-party scenario where the 
parties have an a priori supply of particles in an entangled quantum 
state. We prove linear lower bounds for both exact protocols, as well as 
for protocols that determine the answer with bounded-error probability. 
Our proofs employ a novel kind of "quantum" reduction from a quan- 
tum information theory problem to the problem of computing the inner 
product. The communication required for the former problem can then 
be bounded by an application of Holevo's theorem. We also give a spe- 
cific example of a probabilistic scenario where entanglement reduces the 
communication complexity of the inner product function by one bit. 



1 Introduction and Summary of Results 

The communication complexity of a function / : {0, 1}™ x {0, 1}™ — > {0, 1} is de- 
fined as the minimum amount of communication necessary among two parties, 
conventionally referred to as Alice and Bob, in order for, say, Bob to acquire 
the value of f(x,y), where, initially, Alice is given x and Bob is given y. This 
scenario was introduced by Yao j[6) and has been widely studied (see |l3| for a 
survey). There are a number of technical choices in the model, such as: whether 
the communication cost is taken as the worst-case (x,y), or the average-case 
(x, y) with respect to some probability distribution; whether the protocols are 
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deterministic or probabilistic (and, for probabilistic protocols, whether the par- 
ties have independent random sources or a shared random source); and, what 
correctness probability is required. 

The communication complexity of the inner product modulo two (IP) func- 
tion 

IP(x, y) = xiyx + x 2 V2 H 1- x n y n mod 2 (1) 

is fairly well understood in the above "classical" models. For worst-case inputs 
and deterministic errorless protocols, the communication complexity is n and, for 
randomized protocols (with either an independent or a shared random source), 
uniformly distributed or worst-case inputs, and with error probability ^ — S 
required, the communication complexity is n — 0(log(l/<$)) § (see also g|). 

In 1993, Yao jl7) introduced a variation of the above classical communica- 
tion complexity scenarios, where the parties communicate with qubits, rather 
than with bits. Protocols in this model are at least as powerful as probabilistic 
protocols with independent random sources. Kremer |L2| showed that, in this 
model, the communication complexity of IP is f2(n), whenever the required cor- 
rectness probability is 1 — e for a constant < e < | (Kremer attributes the 
proof methodology to Yao) . 

Cleve and Buhrman M (see also B) introduced another variation of the 
classical communication complexity scenario that also involves quantum infor- 
mation, but in a different way. In this model, Alice and Bob have an initial 
supply of particles in an entangled quantum state, such as Einstein-Podolsky- 
Rosen (EPR) pairs, but the communication is still in terms of classical bits. They 
showed that the entanglement enables the communication for a specific problem 
to be reduced by one bit. Any protocol in Yao's qubit model can be simulated 
by a protocol in this entanglement model with at most a factor two increase 
in communication: each qubit can be "teleported" |3) by sending two classical 
bits in conjunction with an EPR pair of entanglement. On the other hand, we 
are aware of no similar simulation of protocols in the entanglement model by 
protocols in the qubit model, and, thus, the entanglement model is potentially 
stronger. 

In this paper, we consider the communication complexity of IP in two scenar- 
ios: with prior entanglement and qubit communication; and with prior entangle- 
ment and classical bit communication. As far as we know, the proof methodology 
of the lower bound in the qubit communication model without prior entangle- 
ment [jl2| does not carry over to either of these two models. Nevertheless, we 
show Q{n) lower bounds in these models. 

To state our lower bounds more precisely, we introduce the following notation. 
Let / : {0, l} n x {0, 1}™ — > {0, 1} be a communication problem, and < e < \- 
Let Q*(f) denote the communication complexity of / in terms of qubits, where 
quantum entanglement is available and the requirement is that Bob determines 
the correct answer with probability at least 1 — e (the * superscript is intended to 
highlight the fact that prior entanglement is available). Also, let C*(f) denote 
the corresponding communication complexity of / in the scenario where the 



communication is in terms of bits (again, quantum entanglement is available 
and Bob is required to determine the correct answer with probability at least 
1 — e). When e = 0, we refer to the protocols as exact, and, when e > 0, we refer 
to them as bounded-error protocols. With this notation, our results are: 

Ql{IP) = \n/2] (2) 
Ql{IP)>\(l-2efn-\ (3) 

CJ(IP)=n (4) 
C*(IP) >max(i(l-2e) 2 ,(l-2e) 4 )n- \ (5) 

Note that all the lower bounds are Q(n) whenever e is held constant. Also, these 
results subsume the lower bounds in Q, since the qubit model defined by Yao 
[ p"7[ differs from the bounded-error qubit model defined above only in that it 
does not permit a prior entanglement. 

Our lower bound proofs employ a novel kind of "quantum" reduction between 
protocols, which reduces the problem of communicating, say, n bits of informa- 
tion to the IP problem. It is noteworthy that, in classical terms, it can be shown 
that there is no such reduction between the two problems. The appropriate cost 
associated with communicating n bits is then lower-bounded by the following 
nonstandard consequence of Holevo's theorem. 

Theorem 1: In order for Alice to convey n bits of information to Bob, where 
quantum entanglement is available and qubit communication in either direction 
is permitted, Alice must send Bob at least |~n/2] qubits. This holds regardless of 
the prior entanglement and the qubit communication from Bob to Alice. More 
generally, for Bob to obtain m bits of mutual information with respect to Alice's 
n bits, Alice must send at least \rn/2] qubits. 

A slight generalization of Theorem 1 is described and proven in the Appendix. 

It should be noted that, since quantum information subsumes classical infor- 
mation, our results also represent new proofs of nontrivial lower bounds on the 
classical communication complexity of IP, and our methodology is fundamen- 
tally different from those previously used for classical lower bounds. 

Finally, with respect to the question of whether quantum entanglement can 
ever be advantageous for protocols computing IP, we present a curious proba- 
bilistic scenario with n = 2 where prior entanglement enables one bit of commu- 
nication to be saved. 



2 Bounds for Exact Qubit Protocols 

In this section, we consider exact qubit protocols computing IP, and prove 
Eq. (||). Note that the upper bound follows from so-called "superdense coding" 
[0: by sending fn/2] qubits in conjunction with \n/2] EPR pairs, Alice can 
transmit her n classical bits of input to Bob, enabling him to evaluate IP. For 
the lower bound, we consider an arbitrary exact qubit protocol that computes 
IP, and convert it (in two stages) to a protocol for which Theorem 1 applies. 



For convenience, wc use the following notation. If an m-qubit protocol con- 
sists of mi qubits from Alice to Bob and m.2 qubits from Bob to Alice then we 
refer to the protocol as an (mi, m2)-qubit protocol. 

2.1 Converting Exact Protocols into Clean Form 

A clean protocol is a special kind of qubit protocol that follows the general spirit 
of the reversible programming paradigm in a quantum setting. Namely, one in 
which all qubits incur no net change, except for one, which contains the answer. 
In general, the initial state of a qubit protocol is of the form 

\yi,..., y n )\0, . . .,0)\$ba)\xi, . . . ,x n )\0, . . . ,0), (6) 

v y '<« „ ' 

Bob's qubits Alice's qubits 

where \<Pba) is the state of the entangled qubits shared by Alice and Bob, and the 
|0, . . . ,0) states can be regarded as "ancillas". At each turn, a player performs 
some transformation (which, without loss of generality, can be assumed to be 
unitary) on all the qubits in his/her possession and then sends a subset of these 
qubits to the other player. Note that, due to the communication, the qubits 
possessed by each player varies during the execution of the protocol. At the end 
of the protocol, Bob measures one of his qubits which is designated as his output. 

We say that a protocol which exactly computes a function f(x, y) is clean if, 
when executed on the initial state 

\z)\ Vl , ...,y n )\0,.. . ,0)\*ba)\xi, ■ ■ ■ ,x n )\0, . . . ,0), (7) 

results in the final state 

\z + f(x,y))\y x , . . . ,y n )|0, . . . ,0)\$ BA )\xx, . . .,x n )\0, ... ,0) (8) 

(where the addition is mod 2). The "input", the ancilla, and initial entangled 
qubits will typically change states during the execution of the protocol, but they 
are reset to their initial values at the end of the protocol. 

It is straightforward to transform an exact (mi, m2)-qubit protocol into a 
clean (mi + ma, mi + m,2)-qubit protocol that computes the same function. To 
reset the bits of the input, the ancilla, and the initial entanglement, the protocol 
is run once, except the output is not measured, but recorded and then the pro- 
tocol is run in the backwards direction to "undo the effects of the computation" . 
The output is recorded on a new qubit of Bob (with initial state \z}) which is 
control-negated with the output qubit of Bob (that is in the state \ f(x,y))) as 
the control. Note that, for each qubit that Bob sends to Alice when the protocol 
is run forwards, Alice sends the qubit to Bob when run in the backwards direc- 
tion. Running the protocol backwards resets all the qubits — except Bob's new 
one — to their original states. The result is an (mi + m,2, mi + m2)-qubit protocol 
that maps state (0) to state (||). 



2.2 Reduction from Communication Problems 

We now show how to transform a clean (mi + JTI2, m\ + m2)-qubit protocol that 
exactly computes IP for inputs of size n, to an (mi+7712, mi+m2)-qubit protocol 
that transmits n bits of information from Alice to Bob. This is accomplished in 
four stages: 

1. Bob initializes his qubits indicated in Eq. (Q) with z = 1 and yi = ■ ■ ■ = 

Vn = 0. 

2. Bob performs a Hadamard transformation on each of his first n + 1 qubits. 

3. Alice and Bob execute the clean protocol for the inner product function. 

4. Bob again performs a Hadamard transformation on each of his first n + 1 
qubits. 

Let \Bi) denote the state of Bob's first n + 1 qubits after the i th stage. Then 

(9) 
(10) 

,K) 

(11) 

(12) 

where, in Eq. (p"l|), the substitution c = a + 61X1 + • • ■ + b n x n has been made (and 
arithmetic over bits is taken mod 2) . The above transformation was inspired by 
the reading of (m) (see also ||). 

Since the above protocol conveys n bits of information (namely, X\, . .. ,x n ) 
from Alice to Bob, by Theorem 1, we have mi + m2 > n/2. Since this protocol 
can be constructed from an arbitrary exact (mi, m,2)-qubit protocol for IP, this 
establishes the lower bound of Eq. (|2|) . 

Note that, classically, no such reduction is possible. For example, if a clean 
protocol for IP is executed in any classical context, it can never yield more than 
one bit of information to Bob (whereas, in this quantum context, it yields n bits 
of information to Bob) . 

3 Lower Bounds for Bounded-Error Qubit Protocols 

In this section we consider bounded-error qubit protocols for IP, and prove 
Eq. (||). Assume that some qubit protocol P computes IP correctly with prob- 
ability at least 1 — e, where < e < h. Since P is not exact, the constructions 
from the previous section do not work exactly. We analyze the extent by which 
they err. 

First, the construction of Section 2.1 will not produce a protocol in clean 
form; however, it will result in a protocol which approximates an exact clean 



= |1)|0,...,0) 

a,6i,...,6„e{0,l} 

l S 3> = 7 = E (-l) a \a + b 1 x 1 + --- + b n x n )\b 1 ,... 
a,6i,...,6 n e{0,l} 

= E (-1)^+"+^ | c) | 6lj . . . f K) 

c,bi,...,6 n e{0,l} 

\B A ) = \l)\x u ...,x n ), 



protocol (this type of construction was previously carried out in a different con- 
text by Bennett et al. ||). 
Denote the initial state as 

\y x , . . . , y n ) |0, . . . , 0) \$ BA ) \x u ..., x n ) |0, . . . , 0). (13) 

Also, assume that, in protocol P, Bob never changes the state of his input qubits 
| j/i, . . . , y n ) (so the first n qubits never change). This is always possible, since he 
can copy y\, . . . ,y n into his ancilla qubits at the beginning. After executing P 
until just before the measurement occurs, the state of the qubits must be of the 
form 

a|2/i, . . .,y n )\x ■ y)\J) + /%i, • ■ .,y n )\x~^y)\K), (14) 

where \a\ 2 > (1 — e) and \j3\ 2 < e. In the above, the n+l st qubit is the designated 
output, x ■ y denotes the inner product of x and y, and x ■ y denotes the negation 
of this inner product. In general, a, /3, \J), and \K) may depend on x and y. 

Now, suppose that the procedure described in Section 2.1 for producing a 
clean protocol in the exact case is carried out for P. Since, in general, the answer 
qubit is not in the state \x ■ y) — or even in a pure basis state — this does not 
produce the final state 

\z + x ■ y)\ Vl , . . . , y n ) |0, . . . , 0) \$ BA ) \x u ■ ■ ■ , x n )\0, ■ ■ ■ , 0). (15) 

However, let us consider the state that is produced instead. After introducing 
the new qubit, initialized in basis state \z), and applying P, the state is 

\z) (a\ yi , ...,y n )\x- y)\J) + 0\y u . . . ,y n )\x-y)\K)) . (16) 

After applying the controllcd-NOT gate, the state is 

a\z + x ■ 2/)|2/i, ■ • • , y n )\x ■ y)\J) + 0\z + x~^y) \yi,..., y n ) \x~ r y) \K) 
= a\z + x ■ y)\yi, . . .,y n )\x ■ y)\ J) + (3\z + x ■ y)\y u . . . , y n )\x^y)\K) 

-f3\z + x- y)\yi, . . . , y n )\x^y)\K) + (3\z +x T y)\yi, . . . ,y n )\x~y)\K) 
= \z + x-y) (a\yi,...,y n )\x-y)\J) + p\y u y n ) \x~^y)\K)) 

+V2/3^\z + xry)-^\z + x-y)^ \y u . . . , y n )\xTy) \K). (17) 
Finally, after applying P in reverse to this state, the final state is 

\z + x ■ y)\ Vl , . . . , 2/„)|0, . . . , 0) \$ba) \xi, ■ ■ ■ , x n )\0, . . . , 0) + V2(3\M x , y>z ), (18) 
where 

\M XlVlZ ) = ^\z + xry)-j 3 \z + x-y)^P^\y 1 ,...,y n )\xry)\K). (19) 

Note that the vector \/20\M x ViZ ) is the difference between what an exact 
protocol would produce (state ( |l5|)) and what is obtained by using the inexact 
(probabilistic) protocol P (state fllq)). There are some useful properties of the 



|Mc,y,z) states. First, as y € {0, 1}" varies, the states \M X y z) are orthonormal, 
since \y\,. . . ,y n ) is a factor in each such state (this is where the fact that Bob 
does not change his input qubits is used). Also, \M x ^_q) = — \M XtVt i), since only 



z + x ■ y) — -^=\z + x ■ y)) factor in each such state depends on 



z. 



the (£| 

Call the above protocol P. Now, apply the four stage reduction in Section 
2.2, with P in place of an exact clean protocol. The difference between the state 
produced by using P and using an exact clean protocol first occurs after the 
third stage and is 

J2 (-iyV2p y \M x ^ z ) 

V1 ,...,y n ,z£{0,l} 

= ^TT E V20 v (\M XtytO )-\M x , ytl )) 
2/i,...,s»e{o,i} 

= E ^l M ^o), (20) 

vi,---,y n e{o,i} 

which has magnitude bounded above by since, for each y e {0, 1}™, \(3 y | 2 < e, 
and the \M x>y ,o) states arc orthonormal. Also, the magnitude of this difference 
does not change when the Hadamard transform in the fourth stage is applied. 
Thus, the final state is within Euclidean distance 2y / e from 

\1)\X!, . . . ,x n )\0, . . . ,0)\$ BA )\ Xl , . . . ,x n )\0, . . . ,0). (21) 

Consider the angle 9 between this final state and (|l]). It satisfies sin 2 8 + (1 — 
cos#) 2 < 4e, from which it follows that cos 6 > 1 — 2e. Therefore, if Bob mea- 
sures his first n + 1 qubits in the standard basis, the probability of obtaining 
|1, xi, . . . , x n ) is cos 2 6 > (1 — 2e) 2 . 

Now, suppose that uniformly distributed. Then Fano's inequal- 

ity (see, for example, ^|) implies that Bob's measurement causes his uncertainty 
about x\,...,x n to drop from n bits to less than (1 — (1 — 2e) 2 )n + h((l — 2e) 2 ) 
bits, where h(x) = —xlogx — (1 — x) log(l — x) is the binary entropy function. 
Thus, the mutual information between the result of Bob's measurement and 
(xi, . . . , x n ) is at least (1 - 2e) 2 n - h((l - 2e) 2 ) > (1 - 2e) 2 n - 1 bits. By Theo- 
rem 1, the communication from Alice to Bob is at least i(l — 2e) 2 n — ^ qubits, 
which establishes Eq. (||). 



4 Lower Bounds for Bit Protocols 



In this section, we consider exact and bounded-error bit protocols for IP, and 
prove Eqs. (||) and (||). 

Recall that any m-qubit protocol can be simulated by a 2m-bit protocol using 
teleportation || (employing EPR pairs of entanglement). Also, if the commu- 
nication pattern in an m-bit protocol is such that an even number of bits is 
always sent during each party's turn then it can be simulated by an m/2-qubit 
protocol by superdense coding Q (which also employs EPR pairs). However, this 



latter simulation technique cannot, in general, be applied directly, especially for 
protocols where the parties take turns sending single bits. 

We can nevertheless obtain a slightly weaker simulation of bit protocols by 
qubit protocols for IP that is sufficient for our purposes. The result is that, given 
any m-bit protocol for IP n (that is, IP instances of size n), one can construct an 
m-qubit protocol for IP in- This is accomplished by interleaving two executions of 
the bit protocol for IP n to compute two independent instances of inner products 
of size n. We make two observations. First, by taking the sum (mod 2) of the two 
results, one obtains an inner product of size 2n. Second, due to the interleaving, 
an even number of bits is sent at each turn, so that the above superdense coding 
technique can be applied, yielding a (2m)/2 = m-qubit protocol for IPi n . Now, 
Eq. (||) implies m > n, which establishes the lower bound of Eq. (Q) (and the 
upper bound is trivial). 

If the same technique is applied to any m-bit protocol computing IP n with 
probability 1 — e, one obtains an m-qubit protocol that computes IPi n with 
probability (1 — e) 2 + e 2 = 1 — 2e(l — e). Applying Eq. (^) here, with 2n replacing 
n and 2e(l — e) replacing e, yields m > (1— 2e) 4 n — \. For e > 2 ~/ 2 ~ — 0.146 . . ., 
a better bound is obtained by simply noting that C* > Q* (since qubits can 
always be used in place of bits), and applying Eq. (||). This establishes Eq. (||). 

5 An Instance where Prior Entanglement is Beneficial 

Here we will show that in spite of the preceding results, it is still possible that a 
protocol which uses prior entanglement outperforms all possible classical proto- 
cols. This improvement is done in the probabilistic sense where we look at the 
number of communication bits required to reach a certain reliability threshold 
for the IP function. This is done in the following setting. 

Both Alice and Bob have a 2 bit vector X1X2 and j/ij/2) for which they want 
to calculate the inner product modulo 2: 

f(x,y) = XxV\ +X2V2 mod 2 (22) 

with a correctness-probability of at least | . It will be shown that with entangle- 
ment Alice and Bob can reach this ratio with 2 bits of communication, whereas 
without entanglement 3 bits are necessary to obtain this success-ratio. 

5.1 A Two-Bit Protocol with Prior Entanglement 

Initially Alice and Bob share a joint random coin and an EPR-like pair of qubits 
Qa and Q B - 

state(Q A Q B ) = ^(|00) + |11)) (23) 
With these attributes the protocol goes as follows. 



First Alice and Bob determine by a joint random coin flipjj who is going to be 
the 'sender' and the 'receiver' in the protocol. (We continue the description of the 
protocol by assuming that Alice is the sender and that Bob is the receiver.) After 
this, Alice (the sender) applies the rotation A XlX2 on her part of the entangled 
pair and measures this qubit Qa in the standard basis. The result rriA of this 
measurement is then sent to Bob (the receiver) who continues the protocol. 

If Bob has the input string '00', he knows with certainty that the outcome 
of the function f(x,y) is zero and hence he concludes the protocol by sending 
the bit to Alice. Otherwise, Bob performs the rotation B yiV2 on his part of the 
entangled pair Qb and measure it in the standard basis yielding the value tub- 
Now Bob finishes the protocol by sending to Alice the bit itla + tub mod 2. 

Using the rotations shown below and bearing in mind the randomization pro- 
cess in the beginning of the protocol with the joint coin flip, this will be a protocol 
that uses only 2 bits of classical communication and that gives the correct value 
of /(x, y) with a probability of at least g for every possible combination of X\x<i 
and 2/iy2- 

The unitary transformations used by the sender in the protocol are: 




whereas the receiver uses one of the three rotations: 




The matrices were found by using an optimization program that suggested cer- 
tain numerical values. A closer examination of these values revealed the above 
analytical expressions. 



1 Because a joint random coin flip can be simulated with an EPR-pair, we can also 
assume that Alice and Bob start the protocol with two shared EPR-pairs and no 
random coins. 



5.2 No Two-Bit Classical Probabilistic Protocol Exists 



Take the probability distribution tt on the input strings x and y, defined by: 

, s f iff x = 00 or y = 00 
^'^{liffa^OOand^OO ^ 

It is easily verified that for this distribution, every deterministic protocol with 
only two bits of communication will have a correctness ratio of at most | . Using 
Theorem 3.20 of this shows that every possible randomized protocol with 
the same amount of communication will have a success ratio of at most ~. (It 
can also be shown that this | bound is tight but we will omit that proof here.) 
This implies that in order to reach the requested ration of | , at least three bits of 
communication are required if we are not allowed to use any prior entanglement. 

5.3 Two Qubits Suffice Without Prior Entanglement 

A similar result also holds for qubit protocols without prior entanglement ]l7j ]. 
This can be seen by the fact that after Alice applied the rotation A XlX2 and 
measured her qubit Qa with the result wla = 0, she knows the state of Bob's 
qubit Qb exactly. It is therefore also possible to envision a protocol where the 
parties assume the measurement outcome ttia = (this can be done without 
loss of generality) , and for which Alice simply sends this qubit Qb to Bob, after 
which Bob finishes the protocol in the same way as prescribed by the 'prior 
entanglement'-protocol. The protocol has thus become as follows. 

First Alice and Bob decide by a random joint coin flip who is going to be 
the sender and the receiver in protocol. (Again we assume here that Alice is the 
sender.) Next, Alice (the sender) sends a qubit \Q Xl x 2 ) (according to the input 
string X1X2 of Alice and the table |27]) to the receiver Bob who continues the 
protocol. 

IQoo) = yfl\0) - Vtl 1 ) IQ01) = sfi\0) + + i V / S) I 1 ) 

(27) 

IQ10) = /tlo> + (-\/¥+V5) li> = \fi\°) -iy^l 1 ) 

If Bob has the input string 2/12/2 = 00, he concludes the protocol by sending a zero 
bit to Alice. In the other case, Bob applies the rotation B yiV2 to the received 
qubit, measures the qubit in the standard basis, and sends this measurement 
outcome to Alice as the answer of the protocol. By doing so, the same correctness- 
probability of I is reached for the IP function with two qubits of communication, 
whereas the classical setting requires 3 bits of communication as shown above. 
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Appendix: Capacity Results for Communication Using 
Qubits 



In this appendix, we present results about the quantum resources required to 
transmit n classical bits between two parties when two-way communication is 
available. These results are used in the main text in the proof of the lower bound 
on the communication complexity of the inner product function, and may also 
be of independent interest. 

Theorem 2: Suppose that Alice possesses n bits of information, and wants to 
convey this information to Bob. Suppose that Alice and Bob possess no prior 
entanglement but qubit communication in either direction is allowed. Let uab 
be the number of qubits Alice sends to Bob, and uba the number of qubits Bob 
sends to Alice (uab and uba natural numbers). Then, Bob can acquire the 
n bits if and only if the following inequalities are satisfied: 



More generally, Bob can acquire m bits of mutual information with respect to 
Alice's n bits if and only if the above equations hold with m substituted for n. 

Note that Theorem 1 follows from Theorem 2 because, if the communication 
from Bob to Alice is not counted then this can be used to set up an arbitrary 
entanglement at no cost. 

Graphically, the capacity region for the above communication problem is 
shown in Fig. [j]. Note the difference with the classical result for communication 
with bits, where the capacity region is given by the equation uab > n\ that is, 
classically, communication from Bob to Alice does not help. 



fiAB + n B A > n. 



n AB > \n/2] 



(28) 
(29) 



riAB 




n 



riBA 



Fig. 1. Capacity region to send n bits from Alice to Bob. uab is the number of 
qubits Alice sends to Bob, and tiba is the number of qubits Bob sends to Alice. 
The dashed line indicates the bottom of the classical capacity region. 



Proof of Theorem 2: The sufficiency of Eqns. ( p8| ) and ( p9| ) follows from the 
superdense coding technique Q. The nontrivial case is where uab < n. Bob 
prepares n — uab < "ba EPR pairs and sends one qubit of each pair to Alice, 
who can use them in conjunction with sending n — uab < nAB qubits to Bob to 
transmit 2(n — uab) bits to Bob. Alice uses her remaining allotment of 2uab — n 
qubits to transmit the remaining 2uab ~ 71 bits in the obvious way. 

The proof that Eqns. and ( p9f ) are necessary follows from an applica- 
tion of Holevo's Theorem which we now review. Suppose that a classical 
information source produces a random variable X. Depending on the value, x, 
of X, a quantum state with density operator p x is prepared. Suppose that a 
measurement is made on this quantum state in an effort to determine the value 
of X. This measurement results in an outcome Y. Holevo's theorem states that 
the mutual information I{X : Y) between X and Y is bounded by the Holevo 
bound 

UX:Y)<S{p)-Y,P*S{p*), (30) 

X 

where p x are the probabilities associated with the different values of A, p = 
^2 x p x Px, and S is the von Neumann entropy function. The quantity on the right 
hand side of the Holevo bound is known as the Holevo chi quantity, x{p x ) = 
S (p) - J2 x PxS{p x )- 

Let X be Alice's n bits of information, which is uniformly distributed over 
{0, 1}™. Without loss of generality, it can be assumed that the protocol between 
Alice and Bob is of the following form. For any value {x\, . . . ,x n ) of X, Alice 
begins with a set of qubits in state \xi, . . . , cc rl ) |0, . . . , 0) and Bob begins with a 
set of qubits in state |0, . . . , 0). The protocol first consists of a sequence of steps, 
where at each step one of the following processes takes place. 

1. Alice performs a unitary operation on the qubits in her possession. 

2. Bob performs a unitary operation on the qubits in his possession. 

3. Alice sends a qubit to Bob. 

4. Bob sends a qubit to Alice. 

After these steps, Bob performs a measurement on the qubits in his possession, 
which has outcome Y. (Note that one might imagine that the initial states could 
be mixed and that measurements could be performed in addition to unitary 
operations; however, these processes can be simulated using standard techniques 
involving ancilla qubits.) 

Let pf be the density operator of the set of qubits that are in Bob's possession 
after i steps have been executed. Due to Holevo's Theorem, it suffices to upper 
bound the final value of x(pf) — which is also bounded above by S(pi). We 
consider the evolution of x{pf) aim S{pi). Initially, x(Po) = S(Po) = 0; since 
Bob begins in a state independent of X. Now, consider how xipf) an d S(pi) 
change for each of the four processes above. 

1. This does not affect pf and hence has no effect on x{pf) or S(Pi)- 



2. It is easy to verify that x an d S are invariant under unitary transformations, 
so this does not affect x{pf) an d S(pi) either. 

3. Let B denote Bob's qubits after i steps and Q denote the qubit that Alice 
sends to Bob at the i + 1 st step. By the subadditivity inequality and the fact 
that, for a single qubit Q, S(Q) < 1, S(BQ) < S(B) + S(Q) < S(B) + 1. 
Also, by the Araki-Lieb inequality Q, S(BQ) > S{B) - S{Q) > S{B) - 1. 
It follows that S(p i+ i) < S(pi) + 1 and 

X(pf+i) = S{p l+ i) - P* S (Pi+i) 
xe{oj}" 

<(s( Pi )+i)- J2 p.(W)-i) 

xG{0,l}" 

= x(pf) + 2. (31) 

4. In this case, p^_ 1 is pf with one qubit traced out. It is known that tracing out 
a subsystem of any quantum system does not increase x [fjj§7 so x{pf+i) ^ 
x{pf)- Note also that S(pi+i) < S(pi) + 1 for this process, by the Araki-Lieb 
inequality 0. 

Now, since x{pf) can only increase when Alice sends a qubit to Bob and by 
at most 2, Eq. ( |28| ) follows. Also, since S(pt) can only increase when one party 
sends a qubit to the other and by at most 1, Eq. ( p9| ) follows. This completes 
the proof of Theorem 2. 



